Jenkins Hack Leads to $1M Cryptojacking

🚨 Beware of Cryptojacking! 🚨




 Are you using CICD pipeline? Recently, a US -based hacking group identified one of the misconfiguration in the Jenkins servers and based on that, they have deployed the cryptojacking -based module into the cloud servers. They have made $1 million within two weeks of that. So how did they do this? Finding that misconfigured Jenkins server is not a rocket science. You can simply go and search in a Google Docs, Nmap and Omodad. The trick followed by hackers are like, they identify publicly exposed Jenkins of any cloud based company or cloud dependent company and after that they are checking whether the anonymous logins are still enabled, if it is a CLI access is available in the sense and they will be pushed the groovy script with the base64 encoding so that the internal security mechanism would we get bypassed and this Ruby script will be getting to the Jenkins

                                                    FULL VIDEO


#Cryptojacking #cloudsecurity


Comments

Popular posts from this blog

Types of Ransomware & Real Time Incidents In UAE 2024

Why your Cybersecurity team should be lifeline for Cloud Incident Response?